2024 CVE Vulnerabilities
39,227 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-0935 | HIGH | 7.5 | 0.4% | Feb 1, 2024 | Insertion of Sensitive Information into Log File vulnerabilities are affecting DELMIA Apriso Release 2019 through Releas... |
| CVE-2024-22449 | HIGH | 7.8 | 0.2% | Feb 1, 2024 | Dell PowerScale OneFS versions 9.0.0.x through 9.6.0.x contains a missing authentication for critical function vulnerab... |
| CVE-2024-22859 | HIGH | 8.8 | 0.5% | Feb 1, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in livewire before v3.0.4, allows remote attackers to execute arbitrary ... |
| CVE-2024-24573 | HIGH | 8.8 | 0.8% | Jan 31, 2024 | facileManager is a modular suite of web apps built with the sysadmin in mind. In versions 4.5.0 and earlier, when a user... |
| CVE-2024-24747 | HIGH | 8.8 | 34.1% | Jan 31, 2024 | MinIO is a High Performance Object Storage. When someone creates an access key, it inherits the permissions of the paren... |
| CVE-2024-23651 | HIGH | 7.4 | 0.8% | Jan 31, 2024 | BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. T... |
| CVE-2024-21626 | HIGH | 8.6 | 18.1% | Jan 31, 2024 | runc is a CLI tool for spawning and running containers on Linux according to the OCI specification. In runc 1.1.11 and e... |
| CVE-2024-21916 | HIGH | 7.5 | 0.6% | Jan 31, 2024 | A denial-of-service vulnerability exists in specific Rockwell Automation ControlLogix ang GuardLogix controllers. If ex... |
| CVE-2024-21893 | HIGH | 8.2 | 100.0% | Jan 31, 2024 | A server-side request forgery vulnerability in the SAML component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy... |
| CVE-2024-21888 | HIGH | 8.8 | 86.8% | Jan 31, 2024 | A privilege escalation vulnerability in web component of Ivanti Connect Secure (9.x, 22.x) and Ivanti Policy Secure (9.x... |
| CVE-2024-0833 | HIGH | 7.8 | 0.2% | Jan 31, 2024 | In Telerik Test Studio versions prior to v2023.3.1330, a privilege elevation vulnerability has been identified in the ... |
| CVE-2024-0832 | HIGH | 7.8 | 0.2% | Jan 31, 2024 | In Telerik Reporting versions prior to 2024 R1, a privilege elevation vulnerability has been identified in the applicati... |
| CVE-2024-0219 | HIGH | 7.8 | 0.2% | Jan 31, 2024 | In Telerik JustDecompile versions prior to 2024 R1, a privilege elevation vulnerability has been identified in the appli... |
| CVE-2024-22140 | HIGH | 8.8 | 0.3% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Cozmoslabs Profile Builder Pro.This issue affects Profile Builder Pro... |
| CVE-2024-22136 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in DroitThemes Droit Elementor Addons – Widgets, Blocks, Templates Libra... |
| CVE-2024-22304 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Borbis Media FreshMail For WordPress.This issue affects FreshMail For... |
| CVE-2024-22291 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Marco Milesi Browser Theme Color.This issue affects Browser Theme Col... |
| CVE-2024-22285 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in Elise Bosse Frontpage Manager.This issue affects Frontpage Manager: f... |
| CVE-2024-22143 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in WP Spell Check.This issue affects WP Spell Check: from n/a through 9.... |
| CVE-2024-1086 | HIGH | 7.8 | 28.1% | Jan 31, 2024 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2024-1085 | HIGH | 7.8 | 0.3% | Jan 31, 2024 | A use-after-free vulnerability in the Linux kernel's netfilter: nf_tables component can be exploited to achieve local pr... |
| CVE-2024-23507 | HIGH | 8.8 | 0.6% | Jan 31, 2024 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in InstaWP InstaWP Co... |
| CVE-2024-22305 | HIGH | 8.1 | 0.5% | Jan 31, 2024 | Authorization Bypass Through User-Controlled Key vulnerability in ali Forms Contact Form builder with drag & drop for Wo... |
| CVE-2024-22290 | HIGH | 8.8 | 0.2% | Jan 31, 2024 | Cross-Site Request Forgery (CSRF) vulnerability in AboZain,O7abeeb,UnitOne Custom Dashboard Widgets allows Cross-Site Sc... |
| CVE-2024-1098 | HIGH | 7.5 | 1.2% | Jan 31, 2024 | A vulnerability was found in Rebuild up to 3.5.5 and classified as problematic. This issue affects the function QiniuClo... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now